In the Linux kernel, the following vulnerability has been resolved:
usb: ucsi: Fix NULL pointer deref in ucsi_connector_change()
When ucsi_init() fails, ucsi->connector is NULL, yet in case of ucsi_acpi we may still get events which cause the ucs_acpi code to call ucsi_connector_change(), which then derefs the NULL ucsi->connector pointer.
Fix this by not setting ucsi->ntfy inside ucsi_init() until ucsi_init() has succeeded, so that ucsi_connector_change() ignores the events because UCSI_ENABLE_NTFY_CONNECTOR_CHANGE is not set in the ntfy mask.
CVSS Details
- CVSS 3.1 Base Score: 5.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade linux | May 5, 2025 | May 2, 2025 |
| Huawei Euleros 2_0_sp13 | — | Upgrade python3-perfUpgrade kernel-abi-stablelistsUpgrade kernelUpgrade kernel-toolsUpgrade kernel-tools-libsUpgrade bpftool | Sep 25, 2025 | Sep 15, 2025 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | May 2, 2025 |
| Ubuntu | — | Upgrade linux-gkeUpgrade linux-raspiUpgrade linux-awsUpgrade linux-ibm-5.15Upgrade linux-gcp-5.15Upgrade linux-nvidia-tegraUpgrade linux-bluefieldUpgrade linux-lowlatency-hwe-5.15Upgrade linux-aws-5.15Upgrade linux-hwe-5.15Upgrade linux-azureUpgrade linux-nvidia-tegra-5.15Upgrade linux-realtimeUpgrade linux-intel-iotg-5.15Upgrade linux-lowlatencyUpgrade linux-intel-iotgUpgrade linux-oracleUpgrade linux-nvidiaUpgrade linux-gcpUpgrade linux-azure-5.15Upgrade linux-xilinx-zynqmpUpgrade linux-gkeopUpgrade linux-ibmUpgrade linux-kvmUpgrade linuxUpgrade linux-oracle-5.15Upgrade linux-intel-iot-realtimeUpgrade linux-riscv-5.15Upgrade linux-nvidia-tegra-igx | May 8, 2025 | May 2, 2025 |
| Vmware Photon_os | — | Use 'tdnf update' to upgrade all packages to the latest version. | May 27, 2026 | May 2, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub